Links to Microsoft Tools and Information Discussed in the Book
Rights Management Add-on for Internet Explorer
The Script Center Script Repository
DNSlint.exe
Microsoft Network Monitor 3.1
Windows Server 2003 Resource Kit Tools
ADMX Migrator
AdRestore
Windows Server 2008 Auditing AD DS Changes Step-by-Step Guide, from Chapter 1
Step-by-Step Guide for Fine-Grained Password and Account Lockout Policy Configuration, from Chapter 1
Application Directory Partitions, from Chapter 2
Active Directory Structure and Storage Technologies, from Chapter 2
DNS Technical Reference, from Chapter 3
A DNS RR for specifying the location of services (DNS SRV), from Chapter 3
Using NSlookup.exe, from Chapter 3
Troubleshooting Netlogon Event 5774, 5775, and 5781, from Chapter 3
What's New in DNS in Windows Server 2008, from Chapter 3
Overview of the Distributed File System Solution in Microsoft Windows Server 2003 R2, from Chapter 4
Troubleshooting Active Directory Replication Problems, from Chapter 4
How to troubleshoot intra-site replication failures, from Chapter 4
Active Directory Replication Troubleshooter, from Chapter 4
Fixing Replication DNS Lookup Problems (Event IDs 1925, 2087, 2088), from Chapter 4
How to troubleshoot RPC Endpoint Mapper errors, from Chapter 4
Service overview and network port requirements for the Windows Server system, from Chapter 4
Replication Not Working Properly Between Domain Controllers After Deleting One from Sites and Services, from Chapter 4
Active Directory Replication Technologies, from Chapter 4
Script Repository: Active Directory, from Chapter 4 and 10
Free Templates for Microsoft Office, from Chapter 5
Determining Your Active Directory Design and Deployment Strategy, from Chapter 5
Planning for a Complex Exchange Organization, from Chapter 5
Windows 2000/2003: Multiple Forests Considerations White Paper from Chapter 5
Domain Rename Technical Reference, from Chapter 5
Guidance on Active Directory design for Exchange Server 2007, from Chapter 5
Dedicated Active Directory Sites for Exchange, from Chapter 5
Planning Active Directory, from Chapter 5
Windows Server 2003 Active Directory Branch Office Guide, from Chapter 5
Step-by-Step Guide for Read-only Domain Controllers, from Chapter 5
Application Compatibility with Read-only Domain Controllers, from Chapter 5
Multiple Forest Considerations in Windows 2000 and Windows Server 2003, from Chapter 5
Determining the Number of Domains Required, from Chapter 5
Step-by-Step Guide for Windows Server 2008 Active Directory Domain Services Installation and Removal, from Chapter 6 and 7
How to remove data in Active Directory after an unsuccessful domain controller demotion, from Chapter 6
Planning an Active Directory Domain Services Deployment, from Chapter 6 and 7
Planning Domain Controller Capacity, from Chapter 6 and 7
Enabling Windows Server 2008 Advanced Features for Active Directory Domain Services, from Chapter 6
Deploying Windows Server 2008 Regional Domains, from Chapter 6 and 7
Deploying Domain Name System (DNS), from Chapter 6
Installing a New Windows Server 2008 Forest, from Chapter 6 and 7
Dcdiag Overview, from Chapter 6 and 7
Verifying Active Directory Installation, from Chapter 6
Administering the Windows Time Service, from Chapter 6
Using Forwarders to Manage DNS Servers, from Chapter 6
Installing AD DS from Media, from Chapter 6 and 7
Installing an Additional Windows Server 2008 Domain Controller, from Chapter 6
Configuring and Managing DNS Clients, from Chapter 6
Transfer operations master roles, from Chapter 6 and 7
Planning Operations Master Role Placement, from Chapter 6 and 7
UNIX Migration Project Guide, from Chapter 7
Upgrading AD DS Domains to Windows Server 2008, from Chapter 7
Step-by-Step Guide to Kerberos 5 (krb5 1.0) Interoperability, from Chapter 8
Troubleshooting Kerberos Errors, from Chapter 8
How to force Kerberos to use TCP instead of UDP in Windows Server 2003, in Windows XP, and in Windows 2000, from Chapter 8
New resolution for problems with Kerberos authentication when users belong to many groups, from Chapter 8
Service Logons Fail Due to Incorrectly Set SPNs, from Chapter 8
Event ID 11 in the System log of domain controllers, from Chapter 8
How to install the Active Directory Client Extension, from Chapter 8
Client, service, and program incompatibilities that may occur when you modify security settings and user rights assignments, from Chapter 8
Group Policy Settings Reference Windows Vista, from Chapter 8
The Kerberos Network Authentication Service (V5), from Chapter 8
Kerberos Authentication Technical Reference, from Chapter 8
Authorization and Access Control Technologies, from Chapter 8
Troubleshooting Kerberos, from Chapter 8
Best Practices for Delegating Active Directory Administration, from Chapter 9
Best Practices for Delegating Active Directory Administration Appendices, from Chapter 9
Microsoft System Center Operations Manager, from Chapter 9 and 14
Event log may not grow to configured size, from Chapter 9
Delegating Authority in Active Directory, from Chapter 9
Using Scripts to Manage Active Directory Security, from Chapter 9
Sample Scripts to Manage Active Directory Delegation and Security, from Chapter 9
Step-by-Step Guide to Using the Delegation of Control Wizard, from Chapter 9
Default security concerns in Active Directory delegation, from Chapter 9
Microsoft Identity Lifecycle Manager 2007, from Chapter 10
Role-Based Access Control for Multi-tier Applications Using Authorization Manager, from Chapter 10
How the Global Catalog Works, from Chapter 10
Default groups, from Chapter 10
How to use Netdom.exe to reset machine account passwords of a Windows Server 2003 domain controller, from Chapter 10
Pubprn.vbs, from Chapter 10
Step-by-Step Guide to Bulk Import and Export to Active Directory, from Chapter 10
CSVDE, from Chapter 10
Windows PowerShell, from Chapter 10
Benp’s Basic Guide to Managing Active Directory Objects with PowerShell, from Chapter 10
New Categories of Policy Management, from Chapter 11
Windows Server Group Policy, from Chapter 11, 12 and 13
Loopback processing of Group Policy, from Chapter 11
Group Policy Wiki, from Chapter 11, 12, and 13
Group Policy Team Blog, from Chapter 11, 12, and 13
HOWTO: Leverage Group Policies with WMI Filters, from Chapter 11
WMI Filters, from Chapter 11
Scriptomatic Tool, from Chapter 11
Writing WMI Scripts Using the Scriptomatic Utility, from Chapter 11
Troubleshooting Group Policy Using Event Logs, from Chapter 11
Group Policy Script Center, from Chapter 11
Introduction to Group Policy in Windows Server 2003, from Chapter 11
Microsoft IT Showcase: Group Policy Object Infrastructure Management, from Chapter 11
Administering Group Policy with Group Policy Management Console, from Chapter 11
Migrating GPOs Across Domains with GPMC, from Chapter 11
Managing Roaming User Data Deployment Guide, from Chapter 12
Group Policy Settings Reference Windows Server 2008, from Chapter 12
Office 2003 Service Pack 3 Administrative Template, from Chapter 12
2007 Office system Administrative Template files, from Chapter 12
ADMX Migrator, from Chapter 12
Use Group Policy Software Installation to deploy the 2007 Office system, from Chapter 12
Managing Group Policy ADMX Files Step-by-Step Guide, from Chapter 12
Group Policy Preferences Overview, from Chapter 12 and 13
Deploying a Managed Software Environment, from Chapter 12
Password Filter Programming Considerations, from Chapter 13
How to back up the recovery agent Encrypting File System (EFS) private key in Windows Server 2003, in Windows 2000, and in Windows XP, from Chapter 13
The Dcgpofix tool does not restore security settings in the Default Domain Controller Policy to their original state, from Chapter 13
Creating a PSO, from Chapter 13
Introduction to Windows Firewall with Advanced Security, from Chapter 13
Windows Server 2008 Security Guide, from Chapter 13
Step-by-Step Guide for Fine-Grained Password and Account Lockout Policy Configuration, from Chapter 13
How To Use Software Restriction Policies in Windows Server 2003, from Chapter 13
Windows Reliability and Performance Monitor, from Chapter 14
AD DS: Restartable Active Directory Domain Services, from Chapter 14
Windows Vista Reliability and Performance, from Chapter 14
Active Directory Directory Services Maintenance Utility (ntdsutil.exe), from Chapter 14
Relocating Active Directory Database Files, from Chapter 14
Relocating SYSVOL Manually, from Chapter 14
Best Practices for Sysvol Maintenance, from Chapter 14
Microsoft Active Directory Management Pack Guide, from Chapter 14
Monitoring Active Directory with MOM, from Chapter 14
Planning for Active Directory Forest Recovery, from Chapter 15
Disaster Recovery: Active Directory Users and Groups, from Chapter 15
How to restore deleted user accounts and their group memberships in Active Directory, from Chapter 15
Reanimating Active Directory Tombstone Objects, from Chapter 15
Using the BurFlags registry key to reinitialize File Replication Service replica sets, from Chapter 15
Lightweight Directory Access Protocol, from Chapter 16
Lightweight Directory Access Protocol (v3), from Chapter 16
Step-by-Step Guide for Getting Started with Active Directory Lightweight Directory Services, from Chapter 16
How to Use Dsacls.exe in Windows Server 2003 and Windows 2000, from Chapter 16
ADSchemaAnalyzer, from Chapter 16
Adamsync Configuration File XML Reference, from Chapter 16
Active Directory Lightweight Directory Services, from Chapter 16
Active Directory Application Mode Technical Reference, from Chapter 16
Wevtutil, from Chapter 17
Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile, from Chapter 17
Writing a CSP, from Chapter 17
CAPolicy.inf Syntax, from Chapter 17
Installing, Configuring, and Troubleshooting the Microsoft Online Responder, from Chapter 17
PKI-Certificate-Template Class, from Chapter 17
CNG Features, from Chapter 17
Fact Sheet NSA Suite B Cryptography, from Chapter 17
Certutil tasks for configuring a Certification Authority (CA), from Chapter 17
Active Directory Certificate Services, from Chapter 17
Active Directory Rights Management Services SDK, from Chapter 18
XrML, from Chapter 18
Microsoft Windows Rights Management Services Client with Service Pack 2 - x86, from Chapter 18
Microsoft Windows Rights Management Services Client with Service Pack 2 - X64 Edition, from Chapter 18
Microsoft Windows Rights Management Services Client with Service Pack 2 - IA64 Edition, from Chapter 18
Active Directory Rights Management Services Events and Errors Troubleshooting, from Chapter 18
Active Directory Rights Management Services Installed Help on the Web, from Chapter 18
Windows Server 2003 Rights Management Services (RMS), from Chapter 18
Active Directory Rights Management Services Scripting API, from Chapter 18
Active Directory Federation Services (2003), from Chapter 19
Web Services Specifications, from Chapter 19
ADFS Design Guide, from Chapter 19
Active Directory Federation Services (2008), from Chapter 19
ADFS Design and Deployment Guide, from Chapter 19
Configure Web SSO authentication by using ADFS (Office SharePoint Server), from Chapter 19
Active Directory Federation Services Troubleshooting, from Chapter 19